> Coo. Still there are precedents for this kind of unsafe integration  
> of function, as well you know (cf IE, Windoze, Win Explorer, Security  
> Alerts too numerous to mention, etc ...)

Indeed. At least they seem to be doing it accidentally instead of making it
official policy like Microsoft did.

> However, I haven't myself seen Safari opening downloaded zips without  
> asking. But I tend to use Firefox instead.

Do you have "open safe files" disabled? If you don't, it does. The first
time that happened to me I turned that option off.

> I'd be surprised if Apple have made such a huge blunder. Perhaps  
> somebody should tell CERT to check it out.

I wouldn't.

        1. Using Finder to handle FTP URLs. Very bad.
        2. Automatically mounting Internet Enabled DMGs.
        3. "open safe files", already mentioned.
        4. Using the same URI schema for Finder and Safari (help: hole).
        5. Using Terminal to handle X-Man-Page URLs. (latest security pack)


-- 
Unsupported OS X is sponsored by <http://lowendmac.com/>

      Support Low End Mac <http://lowendmac.com/lists/support.html>

Unsupported OS X list info <http://lowendmac.com/lists/unsupported.html>
  --> AOL users, remove "mailto:";
Send list messages to:     <mailto:[email protected]>
To unsubscribe, email:     <mailto:[EMAIL PROTECTED]>
For digest mode, email:    <mailto:[EMAIL PROTECTED]>
Subscription questions:    <mailto:[EMAIL PROTECTED]>
Archive <http://www.mail-archive.com/unsupportedosx%40mail.maclaunch.com/>

iPod Accessories for Less
at 1-800-iPOD.COM
Fast Delivery, Low Price, Good Deal
www.1800ipod.com

Reply via email to